Описание
Calipso Arbitrary File Write via Archive Extraction (Zip Slip)
This affects all versions of package calipso. It is possible for a malicious module to overwrite files on an arbitrary file system through the module install functionality.
Пакеты
Наименование
calipso
npm
Затронутые версииВерсия исправления
<= 0.3.54
Отсутствует
Связанные уязвимости
CVSS3: 7.3
nvd
больше 4 лет назад
This affects all versions of package calipso. It is possible for a malicious module to overwrite files on an arbitrary file system through the module install functionality.